Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Adobe — Vulnerabilities & Security Advisories 4862

Browse all 4862 CVE security advisories affecting Adobe. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Adobe Systems Incorporated primarily develops multimedia and creativity software, most notably the PDF format and the Creative Cloud suite. With a vast attack surface encompassing 4,289 recorded CVEs, the company has historically faced significant security challenges. Common vulnerability classes include remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, often stemming from complex legacy codebases and third-party integrations. Notable incidents include critical RCE vulnerabilities in Acrobat Reader and Flash Player, which were frequently exploited by state-sponsored actors and criminal syndicates. The discontinuation of Flash Player marked a pivotal shift, yet the persistence of high-severity bugs in PDF parsing and document processing engines continues to pose risks. Adobe’s extensive market share makes it a high-value target, necessitating rigorous patch management and secure coding practices to mitigate the ongoing threat landscape associated with its widely deployed enterprise and consumer applications.

CVE ID Title CVSS Severity Published
CVE-2021-40700 Adobe Premiere Elements TIFF Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution — Premiere CWE-788 7.8 - 2021-09-27
CVE-2021-40709 Adobe Photoshop Buffer Overflow leads to Arbitrary Code Execution — Photoshop CWE-120 7.8 High 2021-09-27
CVE-2021-40701 Adobe Premiere Elements m4a Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution — Premiere CWE-788 7.8 - 2021-09-27
CVE-2021-39828 Adobe Digital Editions Installer flaw leads to Local Privilege Escalation — Digital Editions CWE-379 5.8 Medium 2021-09-27
CVE-2021-40703 Adobe Premiere Elements m4a Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution — Not a product CWE-788 7.8 - 2021-09-27
CVE-2021-39825 Adobe Photoshop Elements Edit 2021 TTF Font Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — Photoshop Elements CWE-787 7.8 High 2021-09-27
CVE-2021-40713 Adobe Experience Manager Improper Certificate Validation Could Lead to Man In The Middle Attack — Experience Manager CWE-295 5.9 Medium 2021-09-27
CVE-2021-39827 Adobe Digital Editions Installer flaw leads to Arbitrary File System Write — Digital Editions CWE-379 6.5 Medium 2021-09-27
CVE-2021-40702 Adobe Premiere Elements psd Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution — Premiere CWE-788 7.8 - 2021-09-27
CVE-2021-39824 Adobe Premiere Elements png Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution — Premiere CWE-788 7.8 - 2021-09-27
CVE-2021-40711 Adobe Experience Manager Stored Cross-Site Scripting Could Lead to Arbitrary Code Execution — Experience Manager CWE-79 5.4 Medium 2021-09-27
CVE-2021-28613 Adobe Creative Cloud Arbitrary File Overwrite Vulnerability — Creative Cloud (desktop component) CWE-379 7.4 High 2021-09-27
CVE-2021-39818 Adobe InCopy Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution — InCopy CWE-788 7.8 High 2021-09-27
CVE-2021-39826 Adobe Digital Editions Command Execution Vulnerability — Digital Editions CWE-78 8.6 High 2021-09-27
CVE-2021-39819 Adobe InCopy Memory Corruption Vulnerability Could Lead to Arbitrary Code Execution — InCopy CWE-788 7.8 High 2021-09-27
CVE-2021-39823 svg-native-viewer Heap Buffer overflow Vulnerability — SVG Native Viewer CWE-122 7.8 High 2021-09-27
CVE-2021-28571 Adobe After Effects improper neutralization of special elements could lead to remote code execution — After Effects CWE-78 8.3 High 2021-09-08
CVE-2021-28569 Adobe Media Encoder VOB file parsing out-of-bounds read could lead to information disclosure vulnerability — Media Encoder CWE-125 4.3 Medium 2021-09-08
CVE-2021-28568 Adobe Genuine Services insecure file permission could lead to privilege escalation — GoCart CWE-379 5.8 Medium 2021-09-08
CVE-2021-28567 Magento Commerce improper authorization allows an authenticated user to perform certain functions without permission — Magento Commerce CWE-285 6.5 - 2021-09-08
CVE-2021-28566 Magento Commerce information disclosure during upload action leveraging a specially crafted file — Magento Commerce CWE-200 3.7 Low 2021-09-08
CVE-2021-21105 Adobe Illustrator memory corruption vulnerability could lead to remote code execution — Illustrator CWE-788 8.8 High 2021-09-08
CVE-2021-21104 Adobe Illustrator memory corruption vulnerability could lead to remote code execution — Illustrator CWE-788 8.8 High 2021-09-08
CVE-2021-21103 Adobe Illustrator memory corruption vulnerability could lead to information disclosure — Illustrator CWE-788 4.3 Medium 2021-09-08
CVE-2021-28581 Adobe Creative Cloud Desktop uncontrolled search path element vulnerability could lead to local privilege escalation — Creative Cloud (desktop component) CWE-427 7.3 - 2021-09-08
CVE-2021-28580 Medium by Adobe file parsing buffer overflow vulnerability could lead to arbitrary code execution — Medium CWE-120 8.8 High 2021-09-08
CVE-2021-36017 Adobe After Effects PDF File Parsing Memory Corruption Remote Code Execution Vulnerability — After Effects CWE-788 7.8 High 2021-09-02
CVE-2021-35996 Adobe After Effects Memory Corruption Could Lead To Arbitrary Code Execution — After Effects CWE-788 7.8 High 2021-09-02
CVE-2021-35994 Adobe After Effects JPEG2000 Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability — After Effects CWE-787 7.8 High 2021-09-02
CVE-2021-35995 Adobe After Effects MP4 File Parsing Uninitialized Variable Information Disclosure Vulnerability — After Effects CWE-20 3.3 Low 2021-09-02

This page lists every published CVE security advisory associated with Adobe. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.